CVE Vulnerability Database

Search and browse 394,831 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-0137HIGH7.8In edgetpu_sync_fence_group_shutdown() of edgetpu-dmabuf.c, there is a possible elevation of privilege due to a use afte...
CVE-2026-0136HIGH7.5In Modem, there is a possible out of bounds read due to a missing bounds check. This could lead to remote denial of serv...
CVE-2026-0135HIGH7.8In Modem, there is a possible out of bounds read due to a missing bounds check. This could lead to remote code execution...
CVE-2026-0134MEDIUM4In PostWipeData of recovery_ui.cpp, there is a possible data persistence issue after a factory reset due to a logic erro...
CVE-2026-0133HIGH7.8In smmu_attach_dev of arm-smmu-v3.c, there is a possible way to sign malicious Android Runtime bootclass artifacts due t...
CVE-2026-0132HIGH8.8In Modem, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote code executio...
CVE-2026-0131HIGH7.3In RtpPacket::decodePacket, there is a possible out of bounds access due to an integer overflow. This could lead to loca...
CVE-2026-0130MEDIUM4.3In RtcpChunk::decodeRtcpChunk, there is a possible out of bounds read due to a heap buffer overflow. This could lead to ...
CVE-2026-0129MEDIUM4.3In RtcpByePacket::decodeByePacket, there is a possible due to a missing bounds check. This could lead to remote informa...
CVE-2026-0128MEDIUM6.5In RtcpFbPacket::decodeRtcpFbPacket, there is a possible out of bounds read due to an integer overflow. This could lead ...
CVE-2026-0127MEDIUM6.5In NrmmMsgCodec::DecodeUPUTransparentContext of cn_NrmmDecoder.cpp, there is a possible out-of-bounds read due to memory...
CVE-2026-0126CRITICAL9.8In WC-Radio, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execu...
CVE-2026-0125HIGH7In multiple functions of vpu_ioctl.c, there is a possible use after free due to a race condition. This could lead to loc...
CVE-2026-53866HIGH8.1OpenClaw before 2026.5.12 contains an allowlist bypass vulnerability in shell inline-command parsing that allows authent...
CVE-2026-53865HIGH7.2OpenClaw before 2026.5.2 contains a path traversal vulnerability in maintenance task execution that allows workspace-der...
CVE-2026-53864HIGH8.1OpenClaw before 2026.5.26 contains an insufficient sanitization vulnerability in the host environment sanitizer that all...
CVE-2026-53863MEDIUM6.5OpenClaw before 2026.4.25 contains an input validation vulnerability in tool group policy callers that accept unvalidate...
CVE-2026-53862MEDIUM5.4OpenClaw before 2026.5.12 contains a bootstrap token replay vulnerability allowing callers with pending token access to ...
CVE-2026-53861CRITICAL9.8OpenClaw before 2026.5.6 contains an allowlist bypass vulnerability in the macOS Swift exec feature that misses combined...
CVE-2026-53860MEDIUM5.4OpenClaw before 2026.5.7 contains a sender policy bypass vulnerability in BlueBubbles that allows participants to match ...
CVE-2026-53859MEDIUM6.5OpenClaw before 2026.5.26 contains a hostname validation vulnerability allowing attackers to bypass blocklist comparison...
CVE-2026-53858HIGH7.1OpenClaw before 2026.5.2 contains an environment variable injection vulnerability where workspace .env STATE_DIRECTORY c...
CVE-2026-53857HIGH8.6OpenClaw before 2026.5.3 contains a policy enforcement vulnerability where Zalo contacts with mutable display metadata c...
CVE-2026-53856MEDIUM5.7OpenClaw 2026.4.23 before 2026.4.24 contains an insecure file permissions vulnerability in config recovery that restores...
CVE-2026-53855HIGH8.1OpenClaw before 2026.4.2 contains an inline-eval bypass vulnerability allowing authenticated operators to weaken strict ...